Several vulnerabilities were fixed in the Python3 interpreter. CVE-2015-20107
security update
Al Viro found a buffer overflow in Window Maker 0.80.0 and earlier which may allow remote attackers to execute arbitrary code via a certain image file that is not properly handled when Window Maker uses width and height information to allocate a buffer.
Updated mICQ packages are available for Red Hat Linux versions 7.2 and 7.3 that fix a remote crash.
Updated zlib packages are now available which fix a buffer overflow vulnerability.
Versions of man before 1.51 have a bug where a malformed man file can cause a program named “unsafe” to be run.
While employee monitoring software may boost productivity, it may also be a potential privacy minefield and it can affect your relationship with your employees The post Employee monitoring: is ‘bossware’ right for your company? appeared first on WeLiveSecurity
open-vm-tools: authentication bypass vulnerability in the vgauth module (CVE-2023-20867) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * [ESXi] [SL7] vmtoolsd task is blocked in the uninterruptible state while attempting to delete (unlink) the file ‘quiesce_manifest.xml’ * [ESX [More…]
An update that fixes one vulnerability is now available.
security update
Cybercriminals can use USB charging stations in airports, hotels, malls or other public spaces as conduits for malware The post Avoid juice jacking and recharge your batteries safely this summer appeared first on WeLiveSecurity
The beginning of the summer break is the perfect time for parents to remind their children about the importance of safe online habits The post School’s out for summer, but it’s not time to let your cyber guard down appeared first on WeLiveSecurity
A flaw was found in the ‘/v2/_catalog’ endpoint in ‘distribution/distribution’, which accepts a parameter to control the maximum number of records returned (query string: ‘n’). This vulnerability allows a malicious user to
An update for the go-toolset:rhel8 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
An update for go-toolset-1.19 and go-toolset-1.19-golang is now available for Red Hat Developer Tools. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
The container bci/nodejs was updated. The following patches have been included in this update:
The container bci/nodejs was updated. The following patches have been included in this update:
The container suse/sle-micro/5.4/toolbox was updated. The following patches have been included in this update:
security update
The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:
The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:
The container suse/sle15 was updated. The following patches have been included in this update:
The container suse/postgres was updated. The following patches have been included in this update:
The container suse/pcp was updated. The following patches have been included in this update:
The container bci/bci-init was updated. The following patches have been included in this update:
Missing input validation in various functions may have resulted in denial of service in various functions provided by libx11, the X11 client-side library.
An update for python3 is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Upstream security update with additional bugfixes. Resolves CVE-2023-2431.
Update to 114.0.5735.133. Fixes the following security issues: CVE-2023-3214, CVE-2023-3215, CVE-2023-3215, CVE-2023-3217,
security update
Two vunerabilities were discovered in c-ares, an asynchronous name resolver library: CVE-2023-31130
An update for the python38:3.8 and python38-devel:3.8 modules is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
The container suse/sle15 was updated. The following patches have been included in this update:
The container bci/rust was updated. The following patches have been included in this update:
The container bci/rust was updated. The following patches have been included in this update:
The container bci/python was updated. The following patches have been included in this update:
The container bci/python was updated. The following patches have been included in this update:
The container bci/nodejs was updated. The following patches have been included in this update:
The container bci/bci-init was updated. The following patches have been included in this update:
The container bci/golang was updated. The following patches have been included in this update:
The container bci/golang was updated. The following patches have been included in this update:
The container bci/dotnet-runtime was updated. The following patches have been included in this update:
The container bci/dotnet-runtime was updated. The following patches have been included in this update:
Red Hat OpenShift Container Platform release 4.12.22 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.12.
Update to version 1.2.1. This version includes a fix for CVE-2023-32570 (race condition that can lead to an application crash).
This is the June 2023 monthly update for .NET 7. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.7.md – SDK: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.107.md
This is the June 2023 monthly update for .NET 6. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.18.md – SDK: https://github.com/dotnet/core/blob/main/release- notes/6.0/6.0.18/6.0.118.md
Backport fix for CVE-2023-34969.
This is the June 2023 monthly update for .NET 7. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.7.md – SDK: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.107.md
security update
A primer on how to use this powerful tool for uncovering and connecting information from publicly available sources The post Maltego: Check how exposed you are online appeared first on WeLiveSecurity
The US government has now announced a bounty of $10 million for intel linking the Cl0p ransomware gang to a foreign government The post What to know about the MoveIT hack – Week in security with Tony Anscombe appeared first on WeLiveSecurity
USN 6161-1 introduced a regression in .NET that could incorrectly cause X.509 certificate imports to fail when they should succeed.
Red Hat OpenShift Container Platform release 4.13.4 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13.
Red Hat OpenShift Container Platform release 4.13.4 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13.
The container bci/php was updated. The following patches have been included in this update:
The container bci/php-fpm was updated. The following patches have been included in this update:
The container bci/php-apache was updated. The following patches have been included in this update:
security update
security update
